kms-full[.]io
“KMS Full - KMSPico Activator for Windows & Office”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
This domain, kms-full.io, is actively hosting a confirmed scam site impersonating KMSPico activation tools for Windows and Office. Registered on August 25, 2025, through NiceNIC International Group Co., Limited, the domain resolves to 185.208.156.66 (AS42624, Global-Data System IT Corporation, Switzerland) and uses nameservers ns1.safe-networks.net and ns2.safe-networks.net. The site returns an HTTP 301 redirect, though the destination remains unconfirmed. The page title explicitly advertises 'KMS Full - KMSPico Activator for Windows & Office,' aligning with the reported scam type targeting users seeking unauthorized software activation. Analysis indicates the domain is flagged by three security blocklists and holds a trust score of 0/100. Eleven of 95 security vendors on VirusTotal detect the domain as malicious. The SSL certificate is issued by Let's Encrypt (R12), a common choice for both legitimate and malicious infrastructure. While the exact payload or delivery mechanism is not yet analyzed, the domain’s association with KMSPico—historically linked to malware distribution—suggests a high likelihood of malicious intent. Defenders should treat this domain as active, high-risk infrastructure. Blocking resolution at the DNS or network level is recommended, along with monitoring for connections to the associated IP (185.208.156.66) or nameservers. Given the domain’s age and persistent activity, it may serve as part of a broader campaign. Further investigation into the redirect target and any hosted payloads is advised to determine the full scope of the threat.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
11 ← 10
-
VirusTotal
10 ← 11
التقنيات
حُدّدت ٦ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of kms-full.io · checked Mar 2, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب